Detects 'Improper Access Control' vulnerability in Professional Social Sharing Buttons, Icons & Related Posts plugin for Wordpress affects v. before 9.7.6.


The Professional Social Sharing Buttons, Icons & Related Posts WordPress plugin is a tool that enables website owners to add social sharing buttons, related posts, and icons to their WordPress site effortlessly. This popular plugin provides an easy way for website visitors to share content on their social media profiles and for site admins to promote their content across various social media platforms.

However, as with any software product, there are potential vulnerabilities that hackers can exploit. CVE-2022-0594 is a vulnerability that has recently been identified in the Professional Social Sharing Buttons, Icons & Related Posts plugin before version 9.7.6. The vulnerability allows both unauthenticated users and author+ users to retrieve sensitive information about the site, such as the list of active plugins, various versions of PHP, cURL, and WP.

Unfortunately, if the CVE-2022-0594 vulnerability is exploited, it can lead to various security risks to the website owner. This includes attackers gaining access to sensitive information that could be used to launch a larger scale cyber attack. Furthermore, this vulnerability can also be used to inject malicious code or scripts into the website that will steal sensitive data from visitors.

